6.5
CVSSv3

CVE-2023-29139

Published: 31/03/2023 Updated: 11/04/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An issue exists in the CheckUser extension for MediaWiki up to and including 1.39.3. When a user with checkuserlog permissions makes many CheckUserLog API requests in some configurations, denial of service can occur (RequestTimeoutException or upstream request timeout).

Vulnerable Product Search on Vulmon Subscribe to Product

mediawiki mediawiki